Leverage

First seen
2018-09-15 00:00:00
Malware type
rat
Family
Malware family
Profile updated
2026-07-07 14:37:20

Targeted industries: financial-services government-and-public-sector

Targeted regions: country_code:us country_code:gb

Context

Leverage is a sophisticated Remote Access Tool (RAT) used primarily for cyber espionage targeting financial services and government sectors. It is known for its stealthy operation and ability to exfiltrate sensitive data.

Used by threat actors

  • Andariel Espionage Activity (campaign)
  • C0027 (campaign)
  • Iranian IRGC Data Extortion Operations (campaign)
  • SolarWinds Compromise (campaign)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Osx.Leverage (report)
  • volexity.com — Real News Fake Flash Mac Os X Users Targeted (report)
  • alienvault.com — Osx Leveragea Analysis (report)

External references